REMARKS 

Claims 19-33 are all the claims pending in the application. 

I. Claim Rejections under 35 U.S.C. § 102 

Claims 19-33 were rejected under 35 U.S.C. § 102(e) as being anticipated by Desai et al. 
(U.S. 6,820,204). 

Claim 19 is drawn to a password recovery system for re-supplying a password to a user 
who has forgotten the password, the password recovery system including a communication 
terminal device, and a portable password recording medium having the password recorded 
thereon and being coupled to the communication terminal device. Applicants respectfully submit 
that Desai does not disclose or suggest at least the above-noted features recited in claim 19. 

Regarding Desai, Applicants note that this reference discloses a system for exchanging 
information, the system including a registered user 12, an information exchange system 10, and a 
third party 16 (see Fig. 1). As explained in Desai, the information exchange system 10 is 
responsible for storing profile data (e.g., telephone number, street address, and credit card 
number) of the registered user 12, with the profile data being kept private until the registered user 
12 grants access thereto to one or more third parties 16 (see col. 8, lines 27-30, col. 8, lines 62-67 
and col. 9, lines 4-10). 

In Desai, it is explained that all of the data that is accessible to a registered user may be 
accessed upon the user logging onto the information exchange system and entering a password 
(see col. 15, lines 27-36). In Desai, however, it is disclosed that if a registered user forgets his 
password, then the registered user's private key cannot be recovered, and therefore, the registered 
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user's encrypted secret keys, which are used to decrypt accessible data elements, cannot be 
decrypted, and consequently, none of the encrypted data elements can be decrypted user's 
encrypted secret keys cannot be decrypted, and the encrypted data elements cannot be decrypted 
(see col. 5, line 66 through col. 6, line 5, and col. 15, lines 36-44). 

In this situation of the registered user forgetting his password, it is explicitly disclosed in 
Desai that the system has no way of recovering the lost password , and therefore, that a new 
password must be generated (see col. 15, lines 56-58). 

In this regard, as noted above, claim 19 is drawn to password recovery system for re- 
supplying a password to a user who has forgotten the password, the password recovery system 
including a communication terminal device, and a portable password recording medium having 
the password recorded thereon and being coupled to the communication terminal device. 

Regarding the above-noted features, the Examiner has taken the position in the Office 
Action that the information exchange system 1 0 of Desai corresponds to the "portable password 
recording medium" of claim 19 (see Office Action at pages 2-3). In particular, with respect to the 
feature of the "portable password recording medium having the password recorded thereon", the 
Examiner has pointed to col. 9, lines 1-18 of Desai, and has quoted the passage of Desai which 
indicates that the "registered user's profile data is kept private by the information exchange 
system 10 until the registered user 12 provides access to a view of the stored data" (see Office 
Action at the sentence bridging pages 2 and 3). 

Based on the Examiner's above-noted comments, it appears as though the Examiner 
believes that, in Desai, the password of the registered of the user is stored in the information 
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exchange system 10 so that if the registered user forgets the password, that the password can be 
retrieved. Applicants respectfully point out to the Examiner that this position is incorrect. 

In particular, as discussed above, Desai explicitly indicates at col. 15, lines 56-58 that 
"[w]hen a registered user loses its password, the system has no way of recovering the lost 
password and a new password must be. generated " (emphasis added). Accordingly, as Desai 
clearly discloses that there is no way to recover a lost password, Applicants respectfully submit 
that the Examiner's above-noted position is incorrect regarding the password of the registered 
user 12 being stored at the information exchange system 10. 

Based on the foregoing, Applicants respectfully submit that the information exchange 
system 10 of Desai clearly does not correspond to the portable password recording medium 
having the password recorded, as recited in claim 19. Accordingly, Applicants submit that claim 
19 is patentable over Desai, an indication of which is kindly requested. 

In addition, Applicants note that claim 19 has been amended to recite that the 
communication terminal device comprises a first receiving unit operable to receive, from an 
external communication terminal device, a signed data set generated with use of a secret key 
belonging to a guarantor who guarantees legitimacy of the user . Applicants respectfully submit 
that Desai does not disclose or suggest such a feature. 

Regarding the above-noted "communication terminal device", while the Examiner has 
pointed to several passages of Desai in the Office Action in conjunction with this feature, it is not 
clear to Applicants what element in Desai the Examiner believes corresponds to the 
"communication terminal device" of claim 19. For example, Applicants note that on page 2 of 
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the Office Action, the Examiner has pointed to col. 2, lines 29-53, col. 3, lines 42-62 and col. 8, 
lines 27-41 . Based on these sections cited by the Examiner, Applicants believe that the Examiner 
is taking the position that the terminal device of the registered user (e.g., registered user 1 2) 
corresponds to the "communication terminal device". 

In this regard, however, with respect to the above-noted feature of the communication 
terminal device comprising a first receiving unit . Applicants note that the sections of Desai relied 
on by the Examiner (see page 3 of the Office Action) appear to be drawn mainly to the 
information exchange system 10, and not to the terminal device of the registered user 12. Thus, 
is it not clear what element in Desai the Examiner is alleging corresponds to the "communication 
terminal device" or to the "first receiving unit". 

Regardless of the Examiner's position, however, Applicants note that, in Desai, it is 
described that in order for a registered user 12 to grant a third party 16 access to the profile data 
stored in the information exchange system 10, the routine shown in Fig. 7 is carried out (see col. 
13, lines 21-24). In this regard, as shown in Fig. 7, in step 140, a data element is initially selected 
from the user's profile data to which access will be granted (see col. 13, lines 24-25). Next, in 
step 142, a third party user is selected to which access to the selected data element will be 
granted (see col. 13, lines 25-27). 

In step 144, the information exchange system retrieves the third party's public key from 
the third party's user profile (see col. 13, lines 28-30). Next, in step 146, the registered user's 
copy of an encrypted secret key for the selected data element is located, and in step 148, the 
registered user's private key is used to decrypt the secret key (see col. 13, lines 30-34). After 
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decrypting the secret key, in step 150, the secret key is encrypted with the third party's public key, 
and then in step 1 52, the encrypted secret key is stored in the information exchange system (see 
col. 13, lines 34-38). 

Thus, in Desai, while a registered user is able to grant a third party 16 access to the profile 
data stored in the information exchange system 10 by using the registered user's private key to 
decrypt a secret key, Applicants respectfully submit that there is absolutely no disclosure or 
suggestion in Desai of a first receiving unit that is operable to receive, from an external 
communication terminal device, a signed data set generated with use of a secret key belonging to 
a guarantor who guarantees legitimacy of the user , as recited in amended claim 19. 

Accordingly, Applicants respectfully submit that claim 19 is patentable over Desai, an 
indication of which is kindly requested. 

Further, Applicants note that claim 19 has also been amended to recite that the password 
recording medium comprises an authentication unit operable to read the public key from the 
public key storing unit and perform signature authentication using the read public key and the 
signed data set received by the second receiving unit to judge whether the signed data set 
received by said second receiving unit has been signed by the guarantor . Applicants respectfully 
submit that Desai does not disclose or suggest such a feature. 

Regarding the above-noted feature, in the Office Action, the Examiner has pointed to 
sections of Desai which describe the information exchange system 10 (see Office Action at page 
4). In particular, Applicants note that the Examiner has again pointed to the passage in Desai 
which indicates that a "registered user's profile data is kept private by the information exchange 
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system 10 until the registered user 12 provides access to a view of the stored data". 

With respect to the information exchange system 10 of Desai, as described above, in 
order for a registered user 12 to grant a third party 16 access to the profile data stored in the 
information exchange system 10, the routine shown in Fig. 7 is carried out, which involves the 
information exchange system retrieving the third party's 16 public key (see step 144), with the 
obtained public key being used to encrypt the secret key (see step 150). 

Based on the foregoing, Applicants note that while Desai discloses that the information 
exchange system obtains a public key of a third party, and uses the obtained public key to encrypt 
the secret key, that Desai does not disclose or in any way suggest the feature of an authentication 
unit that is operable to read the public key from the public key storing unit and perform signature 
authentication using the read public key and the signed data set received by the second receiving 
unit to judge whether the signed data set received by the second receiving unit has been signed by 
the guarantor , as recited in amended claim 19. 

Accordingly, Applicants respectfully submit that claim 19 is patentable over Desai, an 
indication of which is kindly requested. 

Moreover, Applicants note that claim 19 has been amended to recite that the password 
recording medium comprises a reading unit operable, when the authentication unit judges that the 
signed data set received by the second receiving unit has been signed by the guarantor , to read the 
password from the password storing unit. Again, Applicants respectfully submit that Desai does 
not disclose or suggest such a feature. 

Regarding the above-noted feature, in the Office Action, the Examiner has pointed to 
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sections of Desai which describe the information exchange system 10 (see Office Action at pages 
4-5). In particular, Applicants note that the Examiner has again pointed to the passage in Desai 
which indicates that a "registered user's profile data is kept private by the information exchange 
system 10 until the registered user 12 provides access to a view of the stored data". 

With respect to the Examiner's position, as explained above, Desai explicitly indicates at 
col. 15, lines 56-58 that "[w]hen a registered user loses its password, the system has no way of 
recovering the lost password and a new password must be generated " (emphasis added). 
Accordingly, as Desai clearly discloses that there is no way to recover a lost password, 
Applicants respectfully submit that the Desai clearly does not disclose or suggest the feature of a 
reading unit that is operable, when the authentication unit judges that the signed data set received 
by the second receiving unit has been signed by the guarantor , to read the password from the 
password storing unit, as recited in amended claim 19. 

In view of the foregoing, Applicants respectfully submit that Desai does not disclose, 
suggest or otherwise render obvious all of the features recited in claim 19. Accordingly, 
Applicants submit that claim 19 is patentable over Desai, an indication of which is kindly 
requested. 

If the Examiner maintains the rejection of claim 19 based on Desai, in order for 
Applicants to make an informed decision with regard to appeal. Applicants kindly request that 
the Examiner explicitly identify the elements in Desai (by reference numbers) that are being 
relied upon as allegedly corresponding to (1) the communication terminal device, (2) the portable 
password recording medium, (3) the first receiving unit, (4) the authentication unit, and (5) the 
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reading unit. 

Regarding claims 20 and 21 , Applicants note that both of these claims depend from claim 
1 9 and are therefore considered patentable at least by virtue of their dependency. 

Regarding claim 22, Applicants note that this claim, as amended, is drawn to a 
communication terminal device for re-supplying a password to a user who has forgotten the 
password, the communication terminal comprising a public key storing unit for storing therein a 
public key that corresponds to a secret key belonging to a guarantor who guarantees legitimacy of 
the user ; an authentication unit operable to read the public key from said public key storing unit 
and perform signature authentication using the read public key and the signed data set received 
by the receiving unit to judge whether the signed data set received by the receiving unit has been 
signed by the guarantor ; and a reading unit operable, when the authentication unit judges that the 
signed data set received by said receiving unit has been signed by the guarantor , to read the 
password from the password storing unit . 

Regarding Desai, as discussed above, while this reference discloses the ability to generate 
a new password if the user forgets the password, and the ability for a registered user 12 to grant a 
third party 16 access to the profile data stored in the information exchange system 10 (using the 
routine of Fig. 7), Applicants respectfully submit that Desai does not disclose, suggest or 
otherwise render obvious the above-noted features recited in claim 22. Accordingly, Applicants 
submit that claim 22 is patentable over Desai, an indication of which is kindly requested. Claims 
23-26 depend from claim 22 and are therefore considered patentable at least by virtue of their 
dependency. 
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Regarding claim 27, Applicants note that this claim, as amended, is drawn to a password 
recording medium that is portable and operable to re-supply a password to a user who has 
forgotten the password, the password recording medium comprising a public key storing unit for 
storing therein a public key that corresponds to a secret key belonging to a guarantor who 
guarantees legitimacy of the user ; an authentication unit operable to read the public key from the 
public key storing unit and perform signature authentication using the read public key and the 
signed data set received by said receiving unit to judge whether the signed data set received by 
the receiving unit has been signed by the guarantor ; and a reading un it operable, when the 
authentication unit judges that the signed data set received by the receiving unit has been signed 
by the guarantor , to read the password from said password storing unit. 

For at least similar reasons as discussed above, Applicants respectfully submit that Desai 
does not disclose, suggest or otherwise render obvious such features. Accordingly, Applicants 
submit that claim 27 is patentable over Desai, an indication of which is kindly requested. Claims 
28-31 depend from claim 27 and are therefore considered patentable at least by virtue of their 
dependency. 

Regarding claims 32 and 33, Applicants note that each of these claims, as amended, 
recites the features of a public key storing unit for storing therein a public key that corresponds to 
a secret key belonging to a guarantor who guarantees legitimacy of the user , the password 
recovery method comprising an authentication step of reading the public key from the public key 
storing unit and performing signature authentication using the read public key and the signed data 
set to judge whether the received signed data set has been signed by the guarantor ; and 
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a reading step of, when the authentication step judges that the signed data set has been signed by 
the guarantor , reading the password from the password storing unit. 

For at least similar reasons as discussed above, Applicants respectfully submit that Desai 
does not disclose, suggest or otherwise render obvious such features. Accordingly, Applicants 
submit that claims 32 and 33 are patentable over Desai, an indication of which is kindly 
requested. 

II. Conclusion 



In view of the above, reconsideration and allowance of this application are now believed 
to be in order, and such actions are hereby solicited. If any points remain in issue which the 
Examiner feels may best be resolved through a personal or telephone interview, the Examiner is 
kindly requested to contact the undersigned at the telephone number listed below. 



KWF/ra 

Washington, D.C. 20006-1021 
Telephone (202) 721-8200 
Facsimile (202) 721-8250 
November 21, 2007 



Respectfully submitted, 



Motoji OHMORI et al. 




Kenneth W. Fields 
Registration No. 52,430 
Attorney for Applicants 
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